Friday 15 January 2010

linux - Packet filtering with Netfilter's NFQUEUE vs. Berkeley Packet Filter (BPF) -



linux - Packet filtering with Netfilter's NFQUEUE vs. Berkeley Packet Filter (BPF) -

i've read in these answers 2 options developing packet filters in linux.

the first using iptables , netfilter, nfqueue , libnetfilter_queue library.

the sec using bpf (berkeley packet filter), seems in quick reading have similar capabilities filtering purposes.

so, of these alternatives improve way create packet filter? differences? software going run gateway proxy, or "man-in-the-middle" should receive packet 1 computer (with destination address one, not filter's local address), , send out after filtering.

thanks lot!

linux iptables netfilter bpf

No comments:

Post a Comment